Forthcoming

DPDP for IT and ITeS

Law, Engineering and Governance of India's Data Protection Regime. A sector reference in twenty-eight chapters.

Twenty-eight chapters for an industry that is usually the processor rather than the fiduciary, and whose obligations arrive through the contract as much as through the statute.

01

Why this book

India's IT and ITeS industry processes personal data belonging to people who are mostly not in India, under contracts written to foreign law, while carrying obligations under Indian law that its clients often do not understand.

This volume works through that position: what the Act asks of a processor, how those duties interact with client contracts and other regimes, and what an Indian service provider should be able to demonstrate on an audit.

The processor's exposure is not smaller than the fiduciary's. It is differently shaped, and it arrives through the contract.
02

What is inside

The part readers mention most

Ready to adapt

  • Processor contract and sub-processor clauses
  • Client assurance and due diligence response material
  • Breach notification runbooks across parallel regimes
  • Employee data notices and workplace processing records
  • Audit evidence packs
03

Who it is for

Delivery leaders, contract and legal teams, information security functions, and compliance heads at IT and ITeS providers of any size.

Not out yet

This volume is in production. If you would like to know when it is available, or you are an organisation likely to want copies, write and I will let you know first.

Tell me when it is out Ask about institutional copies
04

Other titles in the series